Security Analyst; Tier 2 SOC)
Job in
Cherry Hill Township, Cherry Hill, Camden County, New Jersey, 08034, USA
Listed on 2026-08-26
Listing for:
Tgi Main Company
Full Time
position Listed on 2026-08-26
Job specializations:
-
IT/Tech
Cybersecurity, Security Management & Operations, Network Security
Job Description & How to Apply Below
Location: Cherry Hill Township
Job Details
Job Location:
West Caldwell, NJ 07006
Salary Range: $75,000.00 - $95,000.00 Salary
Department:
Technical Operations / SOC
Reports to:
Director of Technical Operations
The Tier 2 SOC Analyst plays a critical role in defending clients from cyber threats through proactive monitoring, incident response, threat analysis, and effective management of client security services. This position is responsible for investigating escalated alerts, mentoring Tier 1 analysts, tuning and maintaining security platforms, supporting the onboarding and offboarding of clients across SOC applications and solutions, and enhancing the overall security posture of client environments.
Roles and Responsibilities Incident Response & Threat Analysis- Investigate security incidents escalated from Tier 1 SOC Analysts.
- Conduct root cause analysis on recurring or advanced threats.
- Identify and respond to phishing, malware, unauthorized access, insider threats, and other security events.
- Assist with incident containment, remediation, documentation, and reporting.
- Escalate significant incidents in accordance with established incident response procedures.
- Tune SIEM, XDR, endpoint security, and other SOC platforms to improve detection accuracy and reduce false positives.
- Recommend and implement enhancements to detection rules, alerting, and response playbooks.
- Review security platform health, integrations, and data ingestion to identify configuration or coverage gaps.
- Work closely with engineering and NOC to ensure security alerts are actionable and prioritized.
- Perform technical onboarding of new clients into SOC-managed security applications, platforms, and solutions. Configure client environments, integrations, policies, alerting, monitoring, and required access according to established SOC standards and service requirements.
- Validate that required security tools, agents, integrations, log sources, and monitoring services are properly deployed and reporting as expected.
- Coordinate with internal teams to ensure onboarding requirements and dependencies are completed accurately and on schedule.
- Document client-specific configurations, integrations, contacts, escalation requirements, and operational procedures.
- Perform technical offboarding of clients from SOC applications and solutions, including removal of integrations, agents, access, monitoring, and client-specific configurations as appropriate.
- Validate completion of onboarding and offboarding activities using established checklists and quality-control procedures.
- Identify gaps, inconsistencies, or opportunities to improve SOC onboarding and offboarding standards, documentation, and automation.
- Perform proactive threat hunting across client environments.
- Analyze logs, endpoint telemetry, and network activity for indicators of compromise (IOCs).
- Maintain awareness of emerging threats, vulnerabilities, attack techniques, and threat actor activity.
- Recommend appropriate mitigations and detection improvements based on identified threats.
- Guide and mentor Tier 1 SOC Analysts on investigation techniques, tools, documentation, and escalation procedures.
- Assist Tier 1 analysts with complex or ambiguous security events.
- Participate in internal tabletop exercises, training sessions, and knowledge-sharing activities.
- Contribute to the development and maintenance of incident response runbooks, SOC procedures, and technical documentation.
- Collaborate with NOC, Service Desk, Engineering, and other technical teams when security issues cross operational boundaries.
- Sentinel One and Microsoft Defender for Endpoint/XDR.
- SIEM platforms such as Microsoft Sentinel, Splunk, Log Rhythm, or equivalent.
- Security monitoring, endpoint protection, vulnerability management, email security, and related SOC technologies.
- Power Shell or other basic scripting and automation technologies.
- Connect Wise Manage or comparable ITSM platforms for ticket tracking, workflow, and documentation.
Skills & Experience:
- Bachelor's degree in Cybersecurity, Information Security, Information Technology, or related field, or equivalent practical experience.
- 2-4 years of experience in SOC, cybersecurity operations, or managed security services.
- Hands-on experience with SIEM, XDR, endpoint protection, or related security platforms.
- Experience configuring, deploying, or administering security tools across multiple environments.
- Ability to troubleshoot security platform integrations, agents, alerting, and data collection.
- Knowledge of NIST, ISO 27001, and CIS security frameworks.
- Strong understanding of incident response processes and security operations practices.
Certifications:
- Experience working within an MSP, MSSP, or multi-client SOC environment.
- Experience onboarding customers into managed security platforms or services.
- CompTIA Security+ or…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×